Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 31, 2025, 4:03 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190171 7.5 危険 joomlahbs - Joomla! 用の Hotel Booking Reservation System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5865 2012-09-25 17:26 2009-01-6 Show GitHub Exploit DB Packet Storm
190172 7.5 危険 joomlahbs - Joomla! 用の Hotel Booking Reservation System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5864 2012-09-25 17:26 2009-01-6 Show GitHub Exploit DB Packet Storm
190173 5 警告 myphpscripts - myPHPscripts Login Session におけるパスワードハッシュを発見される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5855 2012-09-25 17:26 2009-01-6 Show GitHub Exploit DB Packet Storm
190174 4.3 警告 myphpscripts - myPHPscripts Login Session の login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5854 2012-09-25 17:26 2009-01-6 Show GitHub Exploit DB Packet Storm
190175 7.5 危険 mypbs - MyPBS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5851 2012-09-25 17:26 2009-01-6 Show GitHub Exploit DB Packet Storm
190176 4.6 警告 pdfjam - pdfjam における権限を取得される脆弱性 CWE-Other
その他
CVE-2008-5843 2012-09-25 17:26 2009-01-5 Show GitHub Exploit DB Packet Storm
190177 4.3 警告 Horde - Horde Application Framework におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5917 2012-09-25 17:26 2008-12-10 Show GitHub Exploit DB Packet Storm
190178 6.8 警告 ktorrent - KTorrent の Web インターフェースプラグインにおける任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5906 2012-09-25 17:26 2008-10-20 Show GitHub Exploit DB Packet Storm
190179 4.3 警告 ktorrent - KTorrent の Web インターフェースプラグインにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5905 2012-09-25 17:26 2008-10-20 Show GitHub Exploit DB Packet Storm
190180 4.3 警告 knowledgetree document management - KnowledgeTree におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5858 2012-09-25 17:26 2008-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 1, 2025, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267501 - gadu-gadu gadu-gadu_instant_messenger Gadu-Gadu 7.20 does not properly handle MS-DOS device names in filenames, which allows remote attackers to (1) cause a denial of service (hang) via an image filename of AUX: sent twice (hang), or (2)… NVD-CWE-Other
CVE-2005-3887 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267502 - gadu-gadu gadu-gadu_instant_messenger It appears to only affects 7.x versions. NVD-CWE-Other
CVE-2005-3887 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267503 - gadu-gadu gadu-gadu_instant_messenger Memory leak in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code other than 2 and a large size field, which allocates memory for the packet but … NVD-CWE-Other
CVE-2005-3888 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267504 - gadu-gadu gadu-gadu_instant_messenger This vulnerability probably affects all 7.x versions of Gadu-Gadu prior to 7.20. NVD-CWE-Other
CVE-2005-3888 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267505 - - - Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code of 6 or 7, which triggers a large number of popup windows to the user and creates a large numb… NVD-CWE-Other
CVE-2005-3889 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267506 - gadu-gadu gadu-gadu_instant_messenger Gadu-Gadu 7.20 allows remote attackers to cause a denial of service (crash and configuration loss) via a page with a large number of gg: URIs. NVD-CWE-Other
CVE-2005-3890 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267507 - gadu-gadu gadu-gadu_instant_messenger Stack-based buffer overflow in Gadu-Gadu 7.20 allows remote attackers to cause a denial of service (crash) via an image filename between exactly 192 to 200 characters, which does not account for the … NVD-CWE-Other
CVE-2005-3891 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267508 - otrs otrs Multiple SQL injection vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote attackers to execute arbitrary SQL commands and bypass… NVD-CWE-Other
CVE-2005-3893 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267509 - otrs otrs Multiple cross-site scripting (XSS) vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote authenticated users to inject arbitrary w… NVD-CWE-Other
CVE-2005-3894 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm
267510 - otrs otrs Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3, when AttachmentDownloadType is set to inline, renders text/html e-mail attachments as HTML in the browser when the queue… NVD-CWE-Other
CVE-2005-3895 2017-07-20 10:29 2005-11-30 Show GitHub Exploit DB Packet Storm